¡Activa las notificaciones laborales por email!

Information Security Risk Manager (Remote)

The Hive Careers Ltd

España

A distancia

EUR 60.000 - 104.000

Jornada completa

Hace 30+ días

Descripción de la vacante

A leading company, The Hive Careers Ltd, is seeking an experienced Information Security Risk Manager for a remote role. This position involves providing expert consulting services in risk management, assessing security risks across various platforms, and ensuring compliance with security policies. Ideal candidates will have a strong background in information security and be adept at handling complex risk assessments. Join a dynamic team and play a crucial role in safeguarding our technology environments.

Formación

  • Experience in Information Security and Technology Risk Management.
  • Ability to interpret security requirements and architecture documentation.
  • Strong consulting and analytical skills.

Responsabilidades

  • Review requirements documentation and assess potential security risks.
  • Collaborate with third-party teams to interpret penetration test results.
  • Develop risk-based schedules for baseline risk assessments.

Conocimientos

Risk Management
Information Security
Consulting
Threat Assessment
Compliance
Descripción del empleo

About the job: Information Security Risk Manager (Remote)

Job Title: Information Security Risk Manager (Risk Advisor)

Job Type: Full-Time/Contract - 2 years (renewable)

Location: Trinidad and Tobago/Fully Remote

Role Summary:

Provide Information Security & Technology Risk Management consulting services to project teams based on risk management processes and procedures. Participate in project meetings, security reviews, walkthroughs, and risk assessments.

Key Responsibilities:

  1. Review and interpret requirements documentation, architecture diagrams, and solution designs to determine the feasibility of a project and its security risks. Assess business needs against potential risks and provide recommendations to enhance information security.
  2. Assess applications, infrastructure, business units, processes, and external suppliers for information security risks, identifying potential threats and exposures.
  3. Examine and interpret requirements documents, architecture diagrams, solution designs, and other information to determine if a project, application, infrastructure, or external supplier presents security risks.
  4. Work with third-party teams and internal development groups to interpret and review results from penetration tests on internet-facing applications.
  5. Coordinate with teams to ensure code scans are completed for all new or modified code deployments.
  6. Track issues raised during risk management reviews (TRA / ISA / PEN test / CIRA, Code scans/PIRT). Ensure issues are logged as deficiencies if mitigation isn't possible before project implementation, considering the bank's risk appetite.
  7. Collaborate with relevant teams as required.
  8. Provide risk consulting services to projects, ensuring security policies, standards, and processes are embedded in solutions.
  9. Address other related requests from senior management.
  10. Develop a risk-based schedule for BAU baseline risk assessments in consultation with the senior manager, collaborating with technology and business owners to mitigate significant issues.
  11. Review all contracts and third-party arrangements to ensure compliance with security policies and adequate protection of information assets, as requested by senior management.
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.